GreyNoise Feeds Real‑Time Malicious IP Blocklists Directly into Falcon
GreyNoise has extended its threat‑intelligence platform to the CrowdStrike Falcon console, delivering configurable, real‑time blocklists of known malicious
Elevated Zero‑Day Risks and AI‑Powered Threats Demand Proactive Resilience
Good morning, March 9, 2026 – Here’s the latest executive intel for security leaders.
Today's headlines
* Zero‑day
Long‑Term CL‑UNK‑1068 Campaign Exploits DLL Sideloading and Custom Proxies
Palo Alto Networks’ Unit 42 uncovered a previously undocumented threat actor group, labeled CL‑UNK‑1068, that has been compromising
Fake Google Meet Update Deploys Remote‑Access Trojan with One Click
A new phishing campaign observed by Malwarebytes distributes a malicious executable masquerading as a Google Meet update. The file is
Iranian Groups Weaponize IP Cameras for Real‑Time Battlefield Intel
Check Point researchers have uncovered a coordinated campaign by Iranian‑affiliated threat actors that targets internet‑connected IP cameras across
Falcon SIEM Adds Built‑In Log Collection, Cutting Shippers and Boosting Hunt Speed
CrowdStrike has integrated sensor‑native log collection into its Falcon Next‑Gen SIEM, allowing endpoint telemetry to flow directly from
AI‑Powered Attack Playbook: How Threat Actors Weaponize Polymorphic Code
Microsoft’s security blog details a new tradecraft where adversaries harness generative AI to create constantly changing (polymorphic) payloads, automate
AI‑Powered Agents Automate Attack Ops for State‑Sponsored Hackers
A recent investigation by The Register shows that sophisticated AI agents are now being deployed by state‑sponsored threat groups,
LummaStealer Teams Up with CastleLoader, Expanding Credential Theft Ops
Bitdefender’s latest research shows the dormant LummaStealer infostealer has resurfaced, now bundled with the CastleLoader droploader. The combined malware
GoAnywhere MFT Zero‑Day Bypasses Firewalls, Triggers Massive Data Breach
VMware researchers uncovered a critical zero‑day in the GoAnywhere Managed File Transfer (MFT) platform that was actively weaponized by